ef5940.icefactory.cl
Category: Malicious
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCrisk.com may earn a referral commission when users sign up through this link.
Description of ef5940.icefactory.cl
The subdomain ef5940.icefactory.cl appears to host a single-purpose web page styled as an "Adobe Acrobat Reader" document-access screen. Based on the page title, screenshot, and form layout, the page is presented as a secure PDF access portal asking visitors to enter an email address before continuing to a document.
The broader parent domain uses the Chilean .cl country-code extension, but the scanned host itself does not appear to represent a typical corporate homepage or public-facing business website. Instead, it appears to be a narrowly targeted landing page, which may be intended to imitate a document-sharing or document-login workflow associated with a well-known software brand.
Available classification data associates this host with phishing and fraud-related categories from multiple web-classification providers, although one provider labeled it more generically as technology. Based on the visible content, the page appears to function more like a credential-collection or gated-access prompt than a conventional informational website.
Safety Assessment for ef5940.icefactory.cl
This website shows multiple risk indicators at the time of this scan. It was flagged by 15 out of 91 security engines, and several independent classification sources associated it with phishing or fraud-related activity. The screenshot also shows a login-style page branded as "Adobe Acrobat Reader" that asks for an email address to access a supposedly secure PDF, which is a common pattern used in credential-harvesting campaigns.
Blacklist and reputation data were mixed rather than fully clean. Major content-malware and phishing databases included in the scan did not report a listing at the time of review, but the domain's IP address was listed on one mail-reputation blocklist. That DNS-based listing is a weaker signal than direct phishing detections, yet it still adds a small amount of caution to the overall picture.
The host is also an obscure subdomain with no observed traffic ranking, and the page content does not resemble a normal Adobe-owned document service. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site was reachable over HTTPS with a valid Let's Encrypt certificate that was set to expire on 2026-11-08. A valid certificate helps confirm encrypted transport, but it does not by itself indicate legitimacy. The server appears to run Apache and resolves to IP address 186.64.119.45, hosted by ZAM LTDA in Curicó, Chile.
WHOIS and DNS details were limited in the scan: DNSSEC status was unknown, and registrar, expiry, and nameserver information were not available. The domain itself is several years old, but the scanned content is hosted on a specific subdomain, which may be created independently of the parent domain's age. A malware scan also marked one scanned path as suspicious, adding to the technical concern profile at the time of analysis.
Share your experience with this website. Was it safe? Did you encounter any issues?